WIPO logo
Mobile | Deutsch | Español | Français | 日本語 | 한국어 | Português | Русский | 中文 | العربية |
PATENTSCOPE

Search International and National Patent Collections
World Intellectual Property Organization
Search
 
Browse
 
Translate
 
Options
 
News
 
Login
 
Help
 
Machine translation
1. (WO2016093466) METHOD AND DEVICE FOR EVALUATING INFORMATION SECURITY CONTROL STATE
Latest bibliographic data on file with the International Bureau   

Pub. No.:    WO/2016/093466    International Application No.:    PCT/KR2015/008838
Publication Date: 16.06.2016 International Filing Date: 24.08.2015
IPC:
G06F 21/57 (2013.01)
Applicants: KOREA UNIVERSITY RESEARCH AND BUSINESS FOUNDATION [KR/KR]; (Anam-dong 5-ga), Korea University,145, Anam-ro, Seongbuk-gu Seoul 02841 (KR)
Inventors: LEE, Kyung Ho; (KR).
YOU, Young In; (KR).
KIM, Seon Ju; (KR).
CHO, In Hyun; (KR).
YOON, Hyun Sik; (KR)
Agent: MAPS INTELLECTUAL PROPERTY LAW FIRM; (Jeil Pharmaceutical Bldg., Banpo-dong), 4F, 343, Sapyoung-daero, Seocho-gu Seoul 06543 (KR)
Priority Data:
10-2014-0177428 10.12.2014 KR
Title (EN) METHOD AND DEVICE FOR EVALUATING INFORMATION SECURITY CONTROL STATE
(FR) PROCÉDÉ ET DISPOSITIF POUR ÉVALUER UN ÉTAT DE CONTRÔLE DE SÉCURITÉ D’INFORMATIONS
(KO) 정보 보안 통제 상태 평가 방법 및 장치
Abstract: front page image
(EN)A method for evaluating an information security control state according to the present invention comprises the steps of: receiving inspection data obtained by actually checking whether each domain complies with each security control item; calculating a security control state evaluation score for each domain on the basis of the importance level of each control item, the degree of compliance with a corresponding control item, and a weight value configured by an evaluation administrator; calculating a final security control state evaluation score for a higher organization, to which each domain belongs, on the basis of the average of security control state evaluation scores for each domain; and outputting the calculated security control state evaluation score and final security control state evaluation score.
(FR)La présente invention concerne un procédé pour évaluer un état de contrôle de sécurité d’informations, qui comprend les étapes consistant à : recevoir des données d’inspection obtenues en vérifiant réellement si chaque domaine satisfait ou non chaque élément de contrôle de sécurité ; calculer un score d’évaluation d’état de contrôle de sécurité pour chaque domaine sur la base du niveau d’importance de chaque élément de contrôle, du degré de conformité à un élément de contrôle correspondant, et d'une valeur de poids configurée par un administrateur d’évaluation ; calculer un score d’évaluation d’état de contrôle de sécurité final pour une organisation supérieure, à laquelle chaque domaine appartient, sur la base de la moyenne des scores d’évaluation d’état de contrôle de sécurité pour chaque domaine ; et délivrer le score d’évaluation d’état de contrôle de sécurité calculé et le score d’évaluation d’état de contrôle de sécurité final.
(KO)본 발명에 따른 정보 보안 통제 상태 평가 방법은 각 도메인별로 각 보안 통제 항목의 준수 여부를 실사한 실사 데이터를 수신하는 단계, 각 통제 항목의 중요도 등급, 해당 통제 항목의 준수 정도 및 평가 관리자에 의하여 설정된 가중치에 기초하여 각 도메인별로 보안 통제 상태 평가 점수를 산출하는 단계, 각 도메인별 보안 통제 상태 평가 점수의 평균에 기초하여 각 도메인이 소속된 상위조직에 대한 보안 통제 상태 최종 평가 점수를 산출하는 단계, 및 산출된 보안 통제 상태 평가 점수 및 보안 통제 상태 최종 평가 점수를 출력하는 단계를 포함한다.
Designated States: AE, AG, AL, AM, AO, AT, AU, AZ, BA, BB, BG, BH, BN, BR, BW, BY, BZ, CA, CH, CL, CN, CO, CR, CU, CZ, DE, DK, DM, DO, DZ, EC, EE, EG, ES, FI, GB, GD, GE, GH, GM, GT, HN, HR, HU, ID, IL, IN, IR, IS, JP, KE, KG, KN, KP, KZ, LA, LC, LK, LR, LS, LU, LY, MA, MD, ME, MG, MK, MN, MW, MX, MY, MZ, NA, NG, NI, NO, NZ, OM, PA, PE, PG, PH, PL, PT, QA, RO, RS, RU, RW, SA, SC, SD, SE, SG, SK, SL, SM, ST, SV, SY, TH, TJ, TM, TN, TR, TT, TZ, UA, UG, US, UZ, VC, VN, ZA, ZM, ZW.
African Regional Intellectual Property Organization (BW, GH, GM, KE, LR, LS, MW, MZ, NA, RW, SD, SL, ST, SZ, TZ, UG, ZM, ZW)
Eurasian Patent Organization (AM, AZ, BY, KG, KZ, RU, TJ, TM)
European Patent Office (AL, AT, BE, BG, CH, CY, CZ, DE, DK, EE, ES, FI, FR, GB, GR, HR, HU, IE, IS, IT, LT, LU, LV, MC, MK, MT, NL, NO, PL, PT, RO, RS, SE, SI, SK, SM, TR)
African Intellectual Property Organization (BF, BJ, CF, CG, CI, CM, GA, GN, GQ, GW, KM, ML, MR, NE, SN, TD, TG).
Publication Language: Korean (KO)
Filing Language: Korean (KO)